SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 86614a676d069e27dae4eb6ee6db1d983697ea48.
Database Entry
SHA1 Fingerprint: | 86614a676d069e27dae4eb6ee6db1d983697ea48 |
---|---|
Certificate Common Name (CN): | musthavechekthis1staticuo.faith |
Issuer Distinguished Name (DN): | Let's Encrypt Authority X3 |
TLS Version: | TLS 1.2 |
First seen: | 2019-01-23 20:14:58 UTC |
Last seen: | 2019-01-23 20:59:07 UTC |
Status: | Blacklisted |
Listing reason: | Gozi C&C |
Listing date: | 2019-01-23 21:39:11 |
Malware samples: | 5 |
Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2019-01-23 20:59:07 | 13c0fffbdd42ada729f7dd65b01743fa | 30/69 (43.48%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:59:07 | 13c0fffbdd42ada729f7dd65b01743fa | 30/69 (43.48%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:52:59 | 8b98f2faa4ce9724ce2a3bf1d627aa15 | 35/71 (49.30%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:52:59 | 8b98f2faa4ce9724ce2a3bf1d627aa15 | 35/71 (49.30%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:51:55 | 8c43a478e5e75114dc131effaadcb97e | 19/70 (27.14%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:51:55 | 8c43a478e5e75114dc131effaadcb97e | 19/70 (27.14%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:31:18 | 84c1bacddf890bebdd70a021d934b6a9 | 35/69 (50.72%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:31:18 | 84c1bacddf890bebdd70a021d934b6a9 | 35/69 (50.72%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:14:58 | 68ffe674ceaf1576a0869ba39b15b261 | 36/69 (52.17%) | Gozi | 85.217.170.62:443 |
2019-01-23 20:14:58 | 68ffe674ceaf1576a0869ba39b15b261 | 36/69 (52.17%) | Gozi | 85.217.170.62:443 |
# of entries: 10 (max: 100)